I will perform professional web application penetration testing
About this Gig
Hi there, and thanks for checking my gig!
According to OWASP, most web applications have security vulnerabilities, and attackers only need to find one to compromise them.
I'm Julen, a professional and certified (OSCP, BSCP, CRTP, CRTO) penetester and I will help you secure your webapp by performing manual-first penetration testing.
After the assessment, youll receive a clear, professional report including:
- Vulnerability details, severity, and impact
- Screenshots and video PoC
- Practical remediation steps
I test for issues like SQLi, XSS, broken auth, misconfigurations, and more (OWASP Top 10).
Why choose me?
- Manual, detail-focused testing
- OSCP-certified with proven hands-on experience
- Clear, detailed reporting
How the process works:
- Define scope and agree on pricing.
- Sign an authorization form.
- Testing phase.
- Report delivery.
All packages include one free re-test.
I'm currently offering very competitive pricing while building my Fiverr profile.
Feel free to reach out and lets make your application more secure!
Testing application:
Web application
Device:
PC
•
Linux
FAQ
What do you need to start?
I’ll need the target URL, scope details, and your authorization to perform the test. An authorization form will be provided before starting. For authenticated testing, I'll also need two users per each role the web application manages.
Will my application be affected during testing?
I always aim to minimize impact, but some tests may generate additional traffic or unexpected behavior. If needed, we can define safe testing windows.
What languages do you support?
I speak Spanish, English, and Basque, and I can deliver communication and reports in any of these languages. The language of the web application is not a limitation, as I can translate the content.
Can you test production applications?
Yes, but it’s recommended to test in a staging environment when possible. If testing production, we can define safe testing windows or further limitations.
Do you use automated tools?
I follow a manual-first approach. While tools may assist in specific tasks, the core of the assessment is performed manually to identify real-world vulnerabilities that automated scans often miss.
Do you fix the vulnerabilities?
This gig focuses on identifying and explaining vulnerabilities. However, I provide detailed guidance so your developers can fix them easily.
What happens after I fix the vulnerabilities?
All packages include one free re-test to verify that the identified issues have been properly resolved.
Can you test login areas or authenticated features?
Of course! I can test authenticated areas. You may need to provide test credentials.
Do you sign NDAs?
Yes, I’m happy to sign an NDA if required.
